I am creating a web application that basically reads/writes/updates information from and to a database on a server. I am knowledgeable in computer programming, but while seeking security standards, I can't find how to determine what standards to look into. What approach should I take in determining some basic security standards?

Can you give us an approximate idea of what sort of data your application holds, and what sort of threats it faces? There are specific standards that apply to certain types of data (Credit Card data, Personally Identifiable Information, medical records etc.)
–
Graham HillMar 14 '12 at 12:45

3 Answers
3

Depending on what data you are handling there might be different security minimums (encrypting data in the database). But I strongly advice you to start your search on the Open Webapplication Security Project (OWASP).